High severity7.5NVD Advisory· Published Nov 6, 2020· Updated Jun 17, 2026
CVE-2020-26882
CVE-2020-26882
Description
In Play Framework 2.6.0 through 2.8.2, data amplification can occur when an application accepts multipart/form-data JSON input.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.typesafe.play:playMaven | >= 2.6.0, < 2.7.6 | 2.7.6 |
com.typesafe.play:playMaven | >= 2.8.0, < 2.8.3 | 2.8.3 |
Affected products
3- Play/Play Frameworkdescription
Patches
Vulnerability mechanics
References
5- github.com/advisories/GHSA-r8rm-4hfj-2x87ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-26882ghsaADVISORY
- www.playframework.com/security/vulnerabilitynvdVendor Advisory
- www.playframework.com/security/vulnerability/CVE-2020-26882-JsonParseDataAmplificationnvdVendor AdvisoryWEB
- github.com/playframework/playframework/pull/10495ghsaWEB
News mentions
0No linked articles in our index yet.